Medium severity6.1OSV Advisory· Published Jul 20, 2018· Updated Jun 17, 2026
CVE-2018-14474
CVE-2018-14474
Description
views/auth.go in Orange Forum 1.4.0 allows Open Redirection via the next parameter to /login or /signup.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2v1.0.0, v1.0.1, v1.1.0, …+ 1 more
- (no CPE)range: v1.0.0, v1.0.1, v1.1.0, …
- (no CPE)range: =1.4.0
Patches
Vulnerability mechanics
References
1- github.com/s-gv/orangeforum/commit/1f6313cb3a1e755880fc1354f3e1efc4dd2dd4aanvdPatchThird Party Advisory
News mentions
0No linked articles in our index yet.